Summary
A Concise Overview of the scan result of url https://tessera-app-demo.pages.dev/
- Document
- HTML
- 1
- StyleSheets
- 3
- Scripts
- 1
- Font
- 0
- Images
- 1
- Links
- 0
- JavaScript Variables
- 12
- Console log messages
- 0
- Network
- Requests
- 7
- Bytes Transferred
- 396.02KB
- Bytes Total
- 1.44MB
- DNS Record
- A Record
- 2
- AAAA Record
- 2
- Technology
- Security
- 1
- CDN
- 1
- Miscellaneous
- 1
Document
Links
The outgoing links identified from the page.
| Link | Text |
|---|
JavaScript Variables
Global JavaScript variables are variables that are defined outside of any function or block scope in JavaScript.
Technology
The technologies identified are present on the scanned URL.
| Name | Description | Detected patterns |
|---|---|---|
| Security | ||
| HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS. | Type: headers Name: strict-transport-security Regex: (?:) | |
| Miscellaneous | ||
HTTP/3 | HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web. | Type: headers Name: alt-svc Regex: h3 |
| CDN | ||
Cloudflare | Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services. | Type: headers Name: cf-ray Regex: ^cloudflare$ |
Performance
The speed and efficiency of the scanned URL loads and displays its content.
- dns
- 1 msGood
- tcp
- 1 msGood
- requestTime
- 2 msGood
- dom
- 217 msGood
DNS Record
A DNS record maps a domain name to an IP address or other resource information.
| Type | Name | Content | DNSSEC |
|---|---|---|---|
| A | tessera-app-demo.pages.dev | 172.66.47.59 | no |
| A | tessera-app-demo.pages.dev | 172.66.44.197 | no |
| AAAA | tessera-app-demo.pages.dev | 2606:4700:310c::ac42:2cc5 | no |
| AAAA | tessera-app-demo.pages.dev | 2606:4700:310c::ac42:2f3b | no |
SSL Certificate
An SSL certificate is a digital certificate that verifies the authenticity and encrypts the communication between a website and its visitors.
| Subject | Issue date | Expiry date | Valid |
|---|---|---|---|
tessera-app-demo.pages.dev | 9/14/2026 | 9/15/2027 | 1 year 1 day |
fonts.googleapis.com | 9/14/2026 | 9/15/2027 | 1 year 1 day |
demo-api.usetessera.com | 9/14/2026 | 9/15/2027 | 1 year 1 day |
HTTP Headers
HTTP Header
An HTTP header is a component of an HTTP request or response that contains additional information about the message being sent or received.
| Name | Value |
|---|---|
| Access-Control-Allow-Origin | * |
| CF-RAY | a3b62d6dfbb05e51-SEA |
| Cache-Control | public, max-age=0, must-revalidate |
| Connection | keep-alive |
| Content-Encoding | br |
| Content-Type | text/html; charset=utf-8 |
| Date | Tue, 15 Sep 2026 08:14:22 GMT |
| ETag | W/"953193dd7638d2af710f26e302eb8ae9" |
| Nel | {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800} |
| Report-To | {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=lJyy8l6Y4iCesyYt3KdzdDi5ZFWcijGLG3NsDowRBhx1bSG4qXS2GV1nzA9fHMt3lyH%2FnVYX%2FLFuSGxDLoY%2BX7rPTB5YXi7ruKCUcliwm5906nOIJKVhkyYJEGHrm6WvedK22gVBIGNMDtSd%2Bg%3D%3D"}]} |
| Server | cloudflare |
| Strict-Transport-Security | max-age=31536000; includeSubDomains |
| Transfer-Encoding | chunked |
| alt-svc | h3=":443"; ma=86400 |
| content-security-policy | default-src 'self'; script-src 'self' https://static.cloudflareinsights.com https://apis.google.com 'unsafe-eval'; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com; img-src 'self' data: https:; font-src 'self' https://fonts.googleapis.com https://fonts.gstatic.com; connect-src 'self' https://*.usetessera.com https://*.googleapis.com https://graph.microsoft.com https://*.sharepoint.com https://login.microsoftonline.com; frame-src 'self' https://docs.google.com https://drive.google.com https://*.sharepoint.com; frame-ancestors 'none'; base-uri 'self'; form-action 'self'; object-src 'none' |
| cross-origin-resource-policy | same-site |
| permissions-policy | camera=(), microphone=(), geolocation=() |
| referrer-policy | strict-origin-when-cross-origin |
| x-content-type-options | nosniff |
| x-frame-options | DENY |
Content Security Policy
Content Security Policy (CSP) is a security mechanism that helps prevent cross-site scripting (XSS) and other code injection attacks by specifying which content sources are allowed to be loaded on a web page.
| Name | Value |
|---|---|
| default-src | 'self' |
| script-src | 'self'https://static.cloudflareinsights.comhttps://apis.google.com'unsafe-eval' |
| style-src | 'self''unsafe-inline'https://fonts.googleapis.com |
| img-src | 'self'data:https: |
| font-src | 'self'https://fonts.googleapis.comhttps://fonts.gstatic.com |
| connect-src | 'self'https://*.usetessera.comhttps://*.googleapis.comhttps://graph.microsoft.comhttps://*.sharepoint.comhttps://login.microsoftonline.com |
| frame-src | 'self'https://docs.google.comhttps://drive.google.comhttps://*.sharepoint.com |
| frame-ancestors | 'none' |
| base-uri | 'self' |
| form-action | 'self' |
| object-src | 'none |
Cookies
Cookies are small pieces of data stored on a user's web browser to track and remember information about their browsing activity on a website.
| Name | Value | Domain/Path | Expires | Secure | HTTP Only |
|---|